1
0
Fork 0
mirror of https://github.com/rails/rails.git synced 2022-11-09 12:12:34 -05:00
rails--rails/actionview
Rafael Mendonça França 33cb47ee48 Use the reference for the mime type to get the format
Before we were calling to_sym in the mime type, even when it is unknown
what can cause denial of service since symbols are not removed by the
garbage collector.

Fixes: CVE-2014-0082
2014-02-18 16:12:51 -03:00
..
lib Use the reference for the mime type to get the format 2014-02-18 16:12:51 -03:00
test Use the reference for the mime type to get the format 2014-02-18 16:12:51 -03:00
actionview.gemspec More liberal builder dependency 2013-12-12 20:03:02 +01:00
CHANGELOG.md Merge branch '4-1-0-beta2' 2014-02-18 16:00:47 -03:00
MIT-LICENSE update copyright notices to 2014. [ci skip] 2014-01-01 23:59:49 +05:30
Rakefile Running all isolated test for actionview 2013-10-03 00:00:50 +02:00
README.rdoc
RUNNING_UNIT_TESTS.rdoc Directory name in RUNNING_UNIT_TESTS.rdoc [ci skip] 2013-10-04 08:31:29 +02:00

= Action View

Action View is a framework for handling view template lookup and rendering, and provides
view helpers that assist when building HTML forms, Atom feeds and more.
Template formats that Action View handles are ERB (embedded Ruby, typically
used to inline short Ruby snippets inside HTML), and XML Builder.

== Download and installation

The latest version of Action View can be installed with RubyGems:

  % [sudo] gem install actionview

Source code can be downloaded as part of the Rails project on GitHub

* https://github.com/rails/rails/tree/master/actionview


== License

Action View is released under the MIT license:

* http://www.opensource.org/licenses/MIT


== Support

API documentation is at

* http://api.rubyonrails.org

Bug reports and feature requests can be filed with the rest for the Ruby on Rails project here:

* https://github.com/rails/rails/issues